On September 9, 2026, the U.S. Federal Bureau of Investigation (“FBI”) announced the publication of the FBI Cyber Strategy (the “Strategy”). The Strategy, which “provides a roadmap for defending the American people and the nation’s critical infrastructure in cyberspace,” is broken into four pillars:
- Investigate, Disrupt, and Impose Cost on Cyber Adversaries;
- Support Victims;
- Increase Impact Through Partnerships; and
- Enhance FBI’s Cyber Capabilities.
The Strategy may be of interest to organizations as they develop and assess their own threat monitoring and incident response programs, particularly because of the Strategy’s emphasis on the FBI’s continued cooperation and information sharing with the private sector. For purposes of this blog post, we have focused on the first three pillars, as the fourth pillar primarily focuses on the FBI’s internal capabilities.
Investigate, Disrupt, and Impose Cost on Cyber Adversaries
Although this pillar outlines three separate objectives focused primarily on efforts by the FBI to investigate and take action against threat actors, it also underscores the important role the private sector can play in supporting FBI operations to counter cyber threats. The Strategy emphasizes that “[v]ictim reporting and the technical evidence that comes with it are essential” to the FBI’s efforts to investigate cyber intrusions and “fuel both individual investigations and the development of disruption operations that extend well beyond any single case.” The Strategy notes that the FBI’s attribution of threat actors often leverages, among other things, “private-sector telemetry” and “victim reporting.”
Support Victims
This pillar expressly prioritizes supporting and working collaboratively with victims of cybercrime, including by pursuing the following four objectives:
Increase Impact Through Partnerships
This pillar emphasizes that the FBI is committed to expanding and deepening its relationships with partners, including but not limited to partners across the private sector. This is further emphasized by the third objective in this pillar, “join[ing] forces with the private sector,” which notes that “[a] steady, two-way exchange of information between the FBI and the private sector is essential to disrupting adversary activity earlier, notifying victims faster, and disrupting infrastructure before campaigns can scale.” Under this objective, the Strategy re-emphasizes its commitment to “forge direct relationships with industry partners,” including establishing “open channels of communication” and “trusted points of contact before a crisis hits.”
The Strategy further emphasizes that the FBI will seek to strengthen its existing engagement with the private sector through established programs and the expansion of its executive engagement channels. Specifically, the Strategy cites three established programs (InfraGard, the National Cyber-Forensics and Training Alliance, and the National Defense Cyber Alliance) and three executive engagement channels (CISO Academy, Cyber Executive Summits, and the Leadership in Cyber program).
Conclusion
The FBI Cyber Strategy demonstrates the U.S. government’s continued focus on public-private collaboration to counter cyber and cyber-enabled threats, which was a key theme of the current Administration’s National Cyber Strategy and the National Security Presidential Memorandum on Expanding Capabilities to Combat Transnational Cyber-Enabled Crime. Private organizations should expect continued government engagement on countering cyber threats, and should consider both the potential benefits and risks associated with such engagement.